decisionhealth Newsletters, Part B News - 2018 Issue 12 (December)
Prepare for ransomware attacks: Conduct a ‘tabletop’ exercise
Subscribe or sign in to view the full article.
Article Overview
This article covers preparedness planning for ransomware incidents in health care settings, with an emphasis on tabletop exercises, HIPAA security, incident response coordination, and OCR-related concerns. It is aimed at practice managers, compliance teams, privacy and security officers, and other staff responsible for emergency planning, risk assessment, IT response, legal coordination, and breach response readiness. The discussion focuses on the kinds of questions practices should consider when testing their response processes and identifying gaps before an actual event occurs.
Why This Topic Matters
Ransomware can disrupt access to patient information and essential systems, so preparedness planning can help practices respond more effectively and demonstrate compliance-oriented planning efforts. The article is relevant for organizations seeking to strengthen incident response, coordinate internal and external contacts, and understand how OCR guidance fits into ransomware readiness.
What You Will Learn
- What a tabletop exercise is and why it is used in ransomware preparedness
- How health care practices can think through incident response roles and responsibilities
- What broad areas of readiness are commonly reviewed during ransomware planning
- Why ransomware preparedness is relevant to HIPAA security and OCR expectations
- How organizations can evaluate response planning, communication, and recovery readiness
Who Should Read This
- Healthcare practice administrators
- Compliance officers
- Privacy and security officers
- Health information management staff
- IT and cybersecurity personnel
- Legal and risk management teams
- Medical office managers
Subscribe or sign in to view the full article.


Quick, Current, Complete - www.findacode.com